AU-9(6): Read Only Access

CSF v1.1 References:

Threats Addressed:

Baselines:

(Not part of any baseline)

Next Version:

Control Statement

The organization authorizes read-only access to audit information to [Assignment: organization-defined subset of privileged users].

Supplemental Guidance

Restricting privileged user authorizations to read-only helps to limit the potential damage to organizations that could be initiated by such users (e.g., deleting audit records to cover up malicious activity).